Samba.LDAP.AD.DC.Paged.Search.Denial.of.Service

description-logoDescription

This indicates an attack attempt to exploit a Denial of Service Vulnerability in Samba.
The vulnerability is due to improper processing of paged LDAP searches, when Samba is configured as an Active Directory Domain Controller. Successful exploitation could potentially allow denial of service to be performed.

affected-products-logoAffected Products

Samba Team Samba 4.10.x prior to 4.10.5

Impact logoImpact

Denial of Service: Remote attackers can crash vulnerable systems.

recomended-action-logoRecommended Actions

Apply the most recent upgrade or patch from the vendor.
https://www.samba.org/samba/security/CVE-2019-12436.html

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-03-18 15.798 Default_action:pass:drop
2020-03-09 15.790